Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217081 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3331 2013-12-26 14:42 2013-05-14 Show GitHub Exploit DB Packet Storm
217082 7.5 危険 Igor Sysoev - nginx における制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4547 2013-12-26 14:38 2013-11-21 Show GitHub Exploit DB Packet Storm
217083 4.3 警告 Wireshark - Wireshark の LDAP 解析機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-5722 2013-12-26 14:22 2013-09-10 Show GitHub Exploit DB Packet Storm
217084 5 警告 Wireshark - Wireshark の RTPS 解析機能におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-5720 2013-12-26 14:18 2013-09-10 Show GitHub Exploit DB Packet Storm
217085 4.3 警告 Wireshark - Wireshark の ASSA R3 解析機能の epan/dissectors/packet-assa_r3.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-5719 2013-12-26 14:12 2013-09-10 Show GitHub Exploit DB Packet Storm
217086 4.3 警告 Wireshark - Wireshark の NBAP 解析機能の epan/dissectors/packet-nbap.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5718 2013-12-26 14:09 2013-09-10 Show GitHub Exploit DB Packet Storm
217087 4.3 警告 Wireshark - Wireshark の Bluetooth HCI ACL 解析機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-5717 2013-12-26 14:07 2013-09-10 Show GitHub Exploit DB Packet Storm
217088 2.6 注意 ヒューレット・パッカード - HP Autonomy Ultraseek におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6196 2013-12-26 12:02 2013-12-26 Show GitHub Exploit DB Packet Storm
217089 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3330 2013-12-25 18:16 2013-05-14 Show GitHub Exploit DB Packet Storm
217090 7.2 危険 Novell - WebYaST における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3709 2013-12-25 18:15 2013-12-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 19, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
280171 - oracle application_server_portal CRLF injection vulnerability in webapp/jsp/calendar.jsp in Oracle Portal 10g and earlier, including 9.0.2, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting… NVD-CWE-Other
CVE-2006-6697 2018-10-18 06:49 2006-12-22 Show GitHub Exploit DB Packet Storm
280172 - oracle application_server_portal Multiple CRLF injection vulnerabilities in Oracle Portal 9.0.2 and possibly other versions allow remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF… NVD-CWE-Other
CVE-2006-6699 2018-10-18 06:49 2006-12-23 Show GitHub Exploit DB Packet Storm
280173 - atmail atmail_webmail Cross-site request forgery (CSRF) vulnerability in util.pl in @Mail WebMail 4.51, and util.php in 5.x before 5.03, allows remote attackers to modify arbitrary settings and perform unauthorized action… CWE-352
 Origin Validation Error
CVE-2006-6701 2018-10-18 06:49 2006-12-23 Show GitHub Exploit DB Packet Storm
280174 - oracle oracle10g
oracle9i
Multiple cross-site scripting (XSS) vulnerabilities in Oracle Portal 9i and 10g allow remote attackers to inject arbitrary JavaScript via the tc parameter in webapp/jsp/container_tabs.jsp, and other … NVD-CWE-Other
CVE-2006-6703 2018-10-18 06:49 2006-12-23 Show GitHub Exploit DB Packet Storm
280175 - powerscripts powerclan PHP remote file inclusion vulnerability in footer.inc.php in PowerClan 1.14a and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the sett… NVD-CWE-Other
CVE-2006-6715 2018-10-18 06:49 2006-12-23 Show GitHub Exploit DB Packet Storm
280176 - alliedtelesyn at-9000_24_ethernetswitch The Allied Telesis AT-9000/24 Ethernet switch accepts management packets from arbitrary VLANs, contrary to the documentation, which allows remote attackers to conduct attacks against the switch from … NVD-CWE-Other
CVE-2006-6717 2018-10-18 06:49 2006-12-23 Show GitHub Exploit DB Packet Storm
280177 - alliedtelesyn at-9000_24_ethernetswitch The Allied Telesis AT-9000/24 Ethernet switch has a default password for its admin account, "manager," which allows remote attackers to perform unauthorized actions. NVD-CWE-Other
CVE-2006-6718 2018-10-18 06:49 2006-12-23 Show GitHub Exploit DB Packet Storm
280178 - netbsd
openbsd
netbsd
openbsd
OpenBSD and NetBSD permit usermode code to kill the display server and write to the X.Org /dev/xf86 device, which allows local users with root privileges to reduce securelevel by replacing the System… NVD-CWE-Other
CVE-2006-6730 2018-10-18 06:49 2006-12-27 Show GitHub Exploit DB Packet Storm
280179 - osticket osticket_sts Cross-site scripting (XSS) vulnerability in support/view.php in Support Cards 1 (osTicket) allows remote attackers to inject arbitrary web script or HTML via the e parameter. CWE-79
Cross-site Scripting
CVE-2006-6733 2018-10-18 06:49 2006-12-27 Show GitHub Exploit DB Packet Storm
280180 - obie_website mini_web_shop Cross-site scripting (XSS) vulnerability in modules/viewcategory.php in Minh Nguyen Duong Obie Website Mini Web Shop 2.1.c allows remote attackers to inject arbitrary web script or HTML via the catna… CWE-79
Cross-site Scripting
CVE-2006-6734 2018-10-18 06:49 2006-12-27 Show GitHub Exploit DB Packet Storm